CVE-2026-42231 – n8n
CVSS 8.8
IMPORTANT
“Automation tools can quickly become attack tools when critical gaps go unchecked.”
n8n has released patches for two critical vulnerabilities, CVE-2026-42231 and CVE-2026-42232. Both issues carry a CVSS score of 9.4, which is Critical severity. These vulnerabilities affect the core workflow automation platform and could allow attackers to manipulate processes, access sensitive data, or gain control over connected systems if left unresolved.
The patches address high-risk weaknesses in how workflows and configurations are handled, strengthening overall platform security. There is no verified evidence of active exploitation or publicly available proof-of-concept code for these vulnerabilities.
Key Details
- Affected Product
- N8n N8n
- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- Low
- User Interaction
- None
- CWE Classification
- CWE-1321
Patch this CVE on all your endpoints in under 5 minutes.
First 200 endpoints are free forever, scale as needed.